PT-2025-44759 · Cb Project · Cvland

Ulaş Gümüştaş

·

Published

2025-11-03

·

Updated

2025-11-08

·

CVE-2025-0987

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:L
Name of the Vulnerable Software and Affected Versions CB Project Ltd. Co. CVLand versions 2.1.0 through 20251103
Description An authorization bypass exists in CB Project Ltd. Co. CVLand due to a parameter injection issue. This allows for unauthorized access through user-controlled keys.
Recommendations Update CB Project Ltd. Co. CVLand to a version later than 20251103.

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2025-0987

Affected Products

Cvland